The Enterprise Information Security (EIS) department is responsible for safeguarding the critical infrastructure, data, and systems at PJM that manage the high-voltage electric grid serving 65 million people. As part of the Security and Business Continuity Division, the team focuses on mitigating cybersecurity threats through risk management, compliance, and strategic partnerships. The EIS Compliance Analyst serves as a NERC CIP subject-matter expert who partners with CIP-007, CIP-010, CIP-011, and CIP-013 compliance function owners in EIS and other departments to drive the successful execution of compliance activities, ensures security controls are met, quality of evidence, while maintaining strong audit readiness and a focus on continuous process improvement. The EIS Compliance Analyst helps compliance function owners as well as technology owners gain clear understanding of internally and externally-defined compliance requirements. The EIS Compliance Analyst also evaluates processes for improvement opportunities, and works with stakeholders to develop and implement those improvements. This role requires deep experience in both information security as well as supporting NERC CIP compliance functions including audits, conducting compliance investigations, managing mitigation and corrective actions, and producing high-quality written procedures and compliance artifacts. In order to effectively perform these responsibilities, the EIS Compliance Analyst must have effective communications and writing skills, a strong understanding of information security fundamentals and principles, a deep understanding of the NERC CIP compliance requirements and audit processes, and a knowledge of the area of technologies they are assigned to support.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level